LWN.net Logo

nfs-client: access restriction bypass

Package(s):nfs-client CVE #(s):CVE-2008-4552
Created:October 30, 2008 Updated:September 16, 2009
Description: nfs-client has an access restriction bypass vulnerability. From the rPath alert:

Previous versions of the nfs-utils package contain a bug that causes NIS netgroup restrictions to be ignored by TCP Wrappers, which may allow remote attackers to bypass intended access restrictions.

Alerts:
CentOS CESA-2009:1321 2009-09-15
Red Hat RHSA-2009:1321-02 2009-09-02
Mandriva MDVSA-2009:060-1 2009-03-19
Gentoo 200903-06 2009-03-07
Mandriva MDVSA-2009:060 2009-02-27
Ubuntu USN-687-1 2008-12-04
SuSE SUSE-SR:2009:001 2009-01-12
rPath rPSA-2008-0307-1 2008-10-30

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds